PT-2005-3675 · Squid+1 · Squid+2

Published

2005-09-07

·

Updated

2017-10-11

·

CVE-2005-2794

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Squid versions 2.5.STABLE10 and earlier
Description The issue is related to a denial of service (crash) that can be triggered by remote attackers via certain aborted requests. This is caused by an assert error related to STORE PENDING in the store.c file.
Recommendations For Squid versions 2.5.STABLE10 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-2794
DSA-809-1
DSA-809-3
RHSA-2005:766
RHSA-2005_766

Affected Products

Red Hat
Squid
Squid Cache